Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
swenik
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 14 čer 2011 15:42

Prosím o kontrolu logu

#1 Příspěvek od swenik »

Logfile of random's system information tool 1.10 (written by random/random)
Run by lubisa55 at 2015-04-19 21:48:38
Microsoft Windows 8.1
System drive C: has 611 GB (87%) free of 698 GB
Total RAM: 3976 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:48:46, on 19. 4. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\lubisa55.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [HP HD Webcam Driver_Monitor] C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\lubisa55\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem31.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11847 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
atieclxx
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
dashost.exe {10c473a0-a363-4629-a3189b33b240883a}
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\Windows\system32\vcsFPService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-7abf6828-a57e-45f0-aa09-e7a7da97c8f6 -SystemEventPortName:HostProcess-169cb3fd-7717-4cf4-925d-94f97ddc5b1f -IoCancelEventPortName:HostProcess-2bef5150-0e38-409d-84ce-8647292aa1ee -NonStateChangingEventPortName:HostProcess-dbd4e31a-1193-4c99-9a9d-0ec0f8358c6e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2f07a26c-e5b9-4bac-a9dc-6caf491ce34f -DeviceGroupId:
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-28814b4b-818b-4066-9bc2-001c7bdfa1a5 -SystemEventPortName:HostProcess-2db53eef-2720-48ca-a0ce-f14bcec4719e -IoCancelEventPortName:HostProcess-d967c146-70b7-49dd-9a4e-9e7cf8a53ea4 -NonStateChangingEventPortName:HostProcess-021d04b0-fb1e-45ab-a3bc-b2e9426b2632 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e4c9a10b-47df-4058-bec3-1ecc0bef150e -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
taskeng.exe {CAEA7316-3EA0-455E-B6AE-1DE4CC3AAC01}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE"
szndesktop.exe default start
"C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
"C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"

"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 592 596 604 65536 600
"C:\Users\lubisa55\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 60b4c052-65c4-4a8e-978e-9289642b05da.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:60b4c052-65c4-4a8e-978e-9289642b05da
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 931b7e7d-bcea-480e-abd5-880952e05a13.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:931b7e7d-bcea-480e-abd5-880952e05a13

=========Mozilla firefox=========

ProfilePath - C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npwachk.dll

C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\extensions\
cs@dictionaries.addons.mozilla.org
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\searchplugins\
bingp.xml
firmycz.xml
mapycz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-14 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-14 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-10 351136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-08-06 1425408]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\lubisa55\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-03-25 31682144]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2015-04-19 7806232]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2012-07-17 684064]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-08-29 334240]
""= []
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2012-08-16 364032]
"HP HD Webcam Driver_Monitor"=C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe [2012-07-26 303480]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-24 491120]
"RemoteControl10"=c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-03-21 1061960]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-04-14 5512912]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-08-05 766688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-19 21:48:38 ----D---- C:\rsit
2015-04-19 21:48:38 ----D---- C:\Program Files\trend micro
2015-04-19 19:51:40 ----D---- C:\ProgramData\ATI
2015-04-19 19:43:18 ----D---- C:\Program Files (x86)\AMD AVT
2015-04-19 19:40:26 ----SHD---- C:\Config.Msi
2015-04-19 19:34:52 ----D---- C:\WINDOWS\LastGood.Tmp
2015-04-19 19:29:32 ----D---- C:\ProgramData\Package Cache
2015-04-19 19:28:54 ----D---- C:\Program Files\ATI Technologies
2015-04-19 17:42:14 ----SHD---- C:\Recovery
2015-04-19 17:42:00 ----DC---- C:\WINDOWS\Panther
2015-04-19 17:41:00 ----D---- C:\Windows.old
2015-04-19 17:40:28 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\wer.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-04-19 17:40:27 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-04-19 17:40:27 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-04-19 17:40:27 ----A---- C:\WINDOWS\system32\ci.dll
2015-04-19 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-04-19 17:39:00 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Šablony
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Plocha
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Nabídka Start
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Dokumenty
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Data aplikací
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-04-19 17:38:30 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-04-19 17:38:30 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-04-19 17:38:22 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-04-19 17:38:22 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-04-19 17:38:13 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-04-19 17:38:13 ----A---- C:\WINDOWS\system32\schannel.dll
2015-04-19 17:38:05 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-04-19 17:38:03 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\wininet.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\jscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-04-19 17:31:18 ----N---- C:\WINDOWS\system32\stapi64.dll
2015-04-19 17:31:12 ----A---- C:\WINDOWS\system32\stapo64.dll
2015-04-19 17:25:23 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-04-19 17:25:23 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-04-19 17:25:19 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-04-19 17:25:14 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2015-04-19 17:25:10 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-04-19 17:25:10 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-04-19 17:25:06 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-04-19 17:25:06 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eappgnui.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-04-19 17:24:56 ----A---- C:\WINDOWS\system32\win32k.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-04-19 17:24:05 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-04-19 17:24:05 ----SD---- C:\WINDOWS\system32\GWX
2015-04-19 17:23:56 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-04-19 17:23:56 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-04-19 17:23:52 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-04-19 17:23:52 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-04-19 17:23:52 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\wow64.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\tdh.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\sechost.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-19 17:23:20 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2015-04-19 17:23:20 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys
2015-04-19 17:23:16 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-04-19 17:23:08 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-04-19 17:23:03 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-04-19 17:23:03 ----A---- C:\WINDOWS\system32\msctf.dll
2015-04-19 17:22:57 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\certcli.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\mfc42u.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\mfc42.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-04-19 17:21:51 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-04-19 17:21:46 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-04-19 17:21:46 ----A---- C:\WINDOWS\system32\authui.dll
2015-04-19 17:21:38 ----A---- C:\WINDOWS\system32\lsm.dll
2015-04-19 17:21:30 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-04-19 17:21:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-04-19 17:21:26 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2015-04-19 17:21:26 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2015-04-19 17:21:22 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-04-19 17:21:22 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-04-19 17:21:13 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-04-19 17:21:13 ----A---- C:\WINDOWS\system32\calc.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wups2.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wups.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-04-19 17:20:35 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-04-19 17:20:27 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-04-19 17:20:27 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-04-19 17:20:21 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-04-19 17:20:21 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-04-19 17:20:20 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-04-19 17:18:42 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-04-19 17:18:42 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-04-19 17:18:38 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-04-19 17:18:38 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-04-19 17:16:35 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-04-19 17:16:35 ----A---- C:\WINDOWS\explorer.exe
2015-04-19 17:16:28 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-04-19 17:16:23 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-04-19 17:16:23 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-04-19 17:16:07 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-04-19 17:15:55 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2015-04-19 17:15:55 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-04-19 17:15:41 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-04-19 17:15:41 ----A---- C:\WINDOWS\system32\shell32.dll
2015-04-19 17:15:29 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-04-19 17:15:29 ----A---- C:\WINDOWS\system32\localspl.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-04-19 17:10:53 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-04-19 17:10:53 ----D---- C:\Program Files (x86)\MSBuild
2015-04-19 17:10:50 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-04-19 17:10:50 ----D---- C:\Program Files\Reference Assemblies
2015-04-19 17:10:50 ----D---- C:\Program Files\MSBuild
2015-04-19 17:10:05 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-04-19 17:10:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-04-19 17:10:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-04-19 17:10:03 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-04-19 17:10:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-04-19 17:10:01 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-04-19 17:03:45 ----SD---- C:\Users\lubisa55\AppData\Roaming\Microsoft
2015-04-19 16:57:44 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-04-19 16:48:11 ----D---- C:\Program Files\Synaptics
2015-04-19 16:48:07 ----D---- C:\WINDOWS\system32\SRSLabs
2015-04-19 16:47:57 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-04-19 16:47:12 ----D---- C:\Intel
2015-04-19 16:45:28 ----D---- C:\WINDOWS\Prefetch
2015-04-19 11:15:27 ----D---- C:\Program Files\CCleaner
2015-04-19 11:11:55 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-04-19 11:11:29 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-04-19 11:11:28 ----D---- C:\ProgramData\Malwarebytes
2015-04-19 11:11:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-04-19 11:11:28 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-04-19 11:11:28 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-04-19 11:06:26 ----D---- C:\Users\lubisa55\AppData\Roaming\SUPERAntiSpyware.com
2015-04-19 11:06:06 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2015-04-19 11:06:06 ----D---- C:\Program Files\SUPERAntiSpyware
2015-04-15 11:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2015-04-15 11:41:42 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-04-15 11:41:42 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-04-14 18:12:16 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-04-14 18:12:05 ----A---- C:\WINDOWS\avastSS.scr
2015-04-07 22:48:37 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-04 11:07:43 ----A---- C:\WINDOWS\SYSWOW64\drivers\HWiNFO64A.SYS
2015-04-04 11:07:24 ----D---- C:\Program Files (x86)\HWiNFO32

======List of files/folders modified in the last 1 month======

2015-04-19 21:48:38 ----RD---- C:\Program Files
2015-04-19 21:45:23 ----D---- C:\WINDOWS\Temp
2015-04-19 21:44:16 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-04-19 21:42:51 ----D---- C:\Users\lubisa55\AppData\Roaming\Skype
2015-04-19 21:42:38 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-04-19 21:41:38 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-04-19 21:41:10 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-04-19 21:39:57 ----D---- C:\ProgramData\PDFC
2015-04-19 21:22:11 ----D---- C:\WINDOWS\Microsoft.NET
2015-04-19 21:22:05 ----RD---- C:\WINDOWS\assembly
2015-04-19 21:16:45 ----HD---- C:\Program Files\WindowsApps
2015-04-19 21:00:00 ----D---- C:\WINDOWS\system32\sru
2015-04-19 20:42:46 ----D---- C:\WINDOWS\Logs
2015-04-19 20:28:12 ----D---- C:\Users\lubisa55\AppData\Roaming\vlc
2015-04-19 19:57:51 ----D---- C:\WINDOWS\system32\config
2015-04-19 19:51:40 ----HD---- C:\ProgramData
2015-04-19 19:47:42 ----RD---- C:\WINDOWS\System32
2015-04-19 19:47:42 ----D---- C:\WINDOWS\SysWOW64
2015-04-19 19:47:38 ----D---- C:\Windows
2015-04-19 19:46:53 ----D---- C:\WINDOWS\system32\catroot
2015-04-19 19:45:02 ----D---- C:\WINDOWS\system32\Tasks
2015-04-19 19:43:22 ----SHD---- C:\WINDOWS\Installer
2015-04-19 19:43:20 ----D---- C:\ProgramData\AMD
2015-04-19 19:43:18 ----RD---- C:\Program Files (x86)
2015-04-19 19:43:18 ----D---- C:\Program Files (x86)\Common Files
2015-04-19 19:40:48 ----D---- C:\Program Files (x86)\ATI Technologies
2015-04-19 19:34:54 ----D---- C:\WINDOWS\system32\drivers
2015-04-19 19:34:41 ----D---- C:\WINDOWS\Inf
2015-04-19 19:34:37 ----D---- C:\WINDOWS\system32\DriverStore
2015-04-19 19:25:59 ----D---- C:\swsetup
2015-04-19 18:47:01 ----D---- C:\WINDOWS\WinSxS
2015-04-19 18:46:57 ----D---- C:\WINDOWS\system32\en-US
2015-04-19 18:46:45 ----D---- C:\WINDOWS\CbsTemp
2015-04-19 18:46:37 ----SHD---- C:\System Volume Information
2015-04-19 18:45:58 ----D---- C:\WINDOWS\system32\restore
2015-04-19 18:40:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-19 18:34:10 ----D---- C:\WINDOWS\system32\LogFiles
2015-04-19 18:31:24 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-04-19 18:24:00 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-04-19 18:05:18 ----D---- C:\WINDOWS\system32\wdi
2015-04-19 18:03:35 ----SHD---- C:\$Recycle.Bin
2015-04-19 17:55:50 ----D---- C:\WINDOWS\AppReadiness
2015-04-19 17:42:10 ----D---- C:\WINDOWS\rescache
2015-04-19 17:40:33 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-04-19 17:38:56 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-04-19 17:38:56 ----D---- C:\Program Files\Windows NT
2015-04-19 17:38:55 ----D---- C:\WINDOWS\system32\wbem
2015-04-19 17:38:38 ----D---- C:\WINDOWS\Registration
2015-04-19 17:38:09 ----D---- C:\WINDOWS\WinStore
2015-04-19 17:37:45 ----D---- C:\Program Files\Internet Explorer
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\en
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-04-19 17:35:16 ----D---- C:\WINDOWS\servicing
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Photo Viewer
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Mail
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Journal
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Defender
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Mail
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Defender
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\winrm
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\slmgr
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\migwiz
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\en
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\Boot
2015-04-19 17:35:15 ----D---- C:\WINDOWS\en-US
2015-04-19 17:35:14 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-04-19 17:35:14 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-04-19 17:35:10 ----RSD---- C:\WINDOWS\Media
2015-04-19 17:30:22 ----D---- C:\WINDOWS\system32\catroot2
2015-04-19 17:23:48 ----D---- C:\WINDOWS\apppatch
2015-04-19 17:20:02 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-19 17:20:01 ----D---- C:\WINDOWS\SoftwareDistribution
2015-04-19 17:19:30 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-04-19 17:19:27 ----D---- C:\WINDOWS\system32\Sysprep
2015-04-19 17:18:57 ----RSD---- C:\WINDOWS\Fonts
2015-04-19 17:18:57 ----D---- C:\WINDOWS\Tasks
2015-04-19 17:18:22 ----D---- C:\WINDOWS\PolicyDefinitions
2015-04-19 17:15:48 ----RD---- C:\WINDOWS\ToastData
2015-04-19 17:13:40 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\SDA
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-04-19 17:13:35 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-04-19 17:13:34 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-04-19 17:13:34 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-04-19 17:13:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-04-19 17:13:33 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-04-19 17:13:28 ----D---- C:\WINDOWS\system32\WCN
2015-04-19 17:13:27 ----D---- C:\WINDOWS\system32\spool
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\oobe
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\NDF
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\MUI
2015-04-19 17:12:30 ----D---- C:\WINDOWS\system32\IME
2015-04-19 17:12:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-04-19 17:12:27 ----D---- C:\WINDOWS\system32\cs-CZ
2015-04-19 17:12:25 ----SD---- C:\WINDOWS\system32\CompatTel
2015-04-19 17:10:17 ----D---- C:\WINDOWS\system32\appraiser
2015-04-19 17:10:06 ----D---- C:\WINDOWS\Help
2015-04-19 17:10:05 ----D---- C:\WINDOWS\DigitalLocker
2015-04-19 17:10:05 ----D---- C:\WINDOWS\AppCompat
2015-04-19 17:08:02 ----RD---- C:\Users
2015-04-19 17:08:02 ----D---- C:\ProgramData\PRICache
2015-04-19 17:08:01 ----SD---- C:\ProgramData\Microsoft
2015-04-19 17:07:57 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-04-19 17:07:57 ----D---- C:\Program Files (x86)\Windows Media Player
2015-04-19 17:07:50 ----SHD---- C:\Program Files\Windows Sidebar
2015-04-19 17:07:50 ----D---- C:\Program Files\Windows Media Player
2015-04-19 17:07:49 ----D---- C:\Program Files\Common Files\microsoft shared
2015-04-19 17:07:48 ----D---- C:\Program Files\Common Files
2015-04-19 17:05:42 ----D---- C:\WINDOWS\system32\Recovery
2015-04-19 16:48:37 ----D---- C:\WINDOWS\twain_32
2015-04-19 16:44:50 ----D---- C:\WINDOWS\debug
2015-04-19 15:00:49 ----HD---- C:\$Windows.~BT
2015-04-19 13:38:02 ----D---- C:\Program Files\Hewlett-Packard
2015-04-19 13:38:02 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-04-19 13:37:18 ----D---- C:\Users\lubisa55\AppData\Roaming\hpqlog
2015-04-19 13:26:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-18 20:39:34 ----RD---- C:\Program Files (x86)\Skype
2015-04-18 20:38:29 ----D---- C:\ProgramData\Skype
2015-04-15 12:11:35 ----D---- C:\WINDOWS\system32\MRT
2015-04-15 12:08:15 ----A---- C:\WINDOWS\system32\MRT.exe
2015-04-11 14:17:51 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-20 20:31:42 ----D---- C:\WINDOWS\AUInstallAgent

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem36.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-08-05 37088]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-04-14 65736]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-04-14 271200]
R0 hpdskflt;@oem31.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-08-22 31040]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-04-14 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-04-14 1047320]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-04-14 442264]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-04-04 26528]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-04-14 29168]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-04-14 88408]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-04-14 136752]
R3 Accelerometer;@oem31.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-08-22 43328]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-08-04 12534784]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-08-04 619008]
R3 BtAudioBusSrv;@oem8.inf,%SvcDesc%;IVT Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-20 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-08-14 48736]
R3 HpqKbFiltr;@oem29.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2012-08-27 26504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcDAud;@oem14.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-03-17 25816]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 netr28x;@oem27.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2015-04-19 167424]
R3 rtbth;@oem25.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;Služba Reflektor UMDF pro knihovnu SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-11-21 226304]
R3 SPUVCbv;@oem15.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2012-08-03 1062008]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2012-08-06 540160]
R3 SynTP;@oem24.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-03-17 64216]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-15 41272]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2012-08-15 43832]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2014-07-23 172344]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-08-04 239616]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-04-14 343336]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2012-08-15 1578496]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-15 85504]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-08-29 523680]
R2 hpsrv;@oem31.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-08-22 33600]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-06-20 634632]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-19 129856]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-19 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-19 277824]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2012-07-17 1134624]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2012-08-06 321536]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-19 365376]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2012-07-19 2714232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2012-08-15 138752]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-11 1001376]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-31 116648]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-03-17 1080120]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-14 268464]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-31 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-07 148080]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2014-11-21 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

swenik
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 14 čer 2011 15:42

Re: Prosím o kontrolu logu

#3 Příspěvek od swenik »

# AdwCleaner v4.201 - Log vytvořen 19/04/2015 v 22:42:16
# Aktualizováno 08/04/2015 by Xplode
# Databáze : 2015-04-19.4 [Server]
# Operační system : Windows 8.1 (x64)
# Uživatelské jméno : lubisa55 - FIALKA
# Spuštěno z : C:\Users\lubisa55\Desktop\adwcleaner_4.201.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Soubor Smazáno : C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\searchplugins\bingp.xml
Soubor Smazáno : C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\user.js

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v37.0.1 (x86 cs)


-\\ Google Chrome v42.0.2311.90

[C:\Users\lubisa55\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : fcfenmboojpjinhpgggodefccipikbpd

*************************

AdwCleaner[R0].txt - [1382 bytů] - [19/04/2015 22:40:11]
AdwCleaner[S0].txt - [1302 bytů] - [19/04/2015 22:42:16]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1360 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

swenik
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 14 čer 2011 15:42

Re: Prosím o kontrolu logu

#5 Příspěvek od swenik »

Logfile of random's system information tool 1.10 (written by random/random)
Run by lubisa55 at 2015-04-19 21:48:38
Microsoft Windows 8.1
System drive C: has 611 GB (87%) free of 698 GB
Total RAM: 3976 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:48:46, on 19. 4. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\lubisa55.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [HP HD Webcam Driver_Monitor] C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\lubisa55\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem31.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11847 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
atieclxx
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
dashost.exe {10c473a0-a363-4629-a3189b33b240883a}
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\Windows\system32\vcsFPService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-7abf6828-a57e-45f0-aa09-e7a7da97c8f6 -SystemEventPortName:HostProcess-169cb3fd-7717-4cf4-925d-94f97ddc5b1f -IoCancelEventPortName:HostProcess-2bef5150-0e38-409d-84ce-8647292aa1ee -NonStateChangingEventPortName:HostProcess-dbd4e31a-1193-4c99-9a9d-0ec0f8358c6e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2f07a26c-e5b9-4bac-a9dc-6caf491ce34f -DeviceGroupId:
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-28814b4b-818b-4066-9bc2-001c7bdfa1a5 -SystemEventPortName:HostProcess-2db53eef-2720-48ca-a0ce-f14bcec4719e -IoCancelEventPortName:HostProcess-d967c146-70b7-49dd-9a4e-9e7cf8a53ea4 -NonStateChangingEventPortName:HostProcess-021d04b0-fb1e-45ab-a3bc-b2e9426b2632 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e4c9a10b-47df-4058-bec3-1ecc0bef150e -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
taskeng.exe {CAEA7316-3EA0-455E-B6AE-1DE4CC3AAC01}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE"
szndesktop.exe default start
"C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
"C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"

"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 592 596 604 65536 600
"C:\Users\lubisa55\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 60b4c052-65c4-4a8e-978e-9289642b05da.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:60b4c052-65c4-4a8e-978e-9289642b05da
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 931b7e7d-bcea-480e-abd5-880952e05a13.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:931b7e7d-bcea-480e-abd5-880952e05a13

=========Mozilla firefox=========

ProfilePath - C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npwachk.dll

C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\extensions\
cs@dictionaries.addons.mozilla.org
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\searchplugins\
bingp.xml
firmycz.xml
mapycz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-14 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-14 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-10 351136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-08-06 1425408]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\lubisa55\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-03-25 31682144]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2015-04-19 7806232]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2012-07-17 684064]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-08-29 334240]
""= []
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2012-08-16 364032]
"HP HD Webcam Driver_Monitor"=C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe [2012-07-26 303480]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-24 491120]
"RemoteControl10"=c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-03-21 1061960]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-04-14 5512912]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-08-05 766688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-19 21:48:38 ----D---- C:\rsit
2015-04-19 21:48:38 ----D---- C:\Program Files\trend micro
2015-04-19 19:51:40 ----D---- C:\ProgramData\ATI
2015-04-19 19:43:18 ----D---- C:\Program Files (x86)\AMD AVT
2015-04-19 19:40:26 ----SHD---- C:\Config.Msi
2015-04-19 19:34:52 ----D---- C:\WINDOWS\LastGood.Tmp
2015-04-19 19:29:32 ----D---- C:\ProgramData\Package Cache
2015-04-19 19:28:54 ----D---- C:\Program Files\ATI Technologies
2015-04-19 17:42:14 ----SHD---- C:\Recovery
2015-04-19 17:42:00 ----DC---- C:\WINDOWS\Panther
2015-04-19 17:41:00 ----D---- C:\Windows.old
2015-04-19 17:40:28 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\wer.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-04-19 17:40:27 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-04-19 17:40:27 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-04-19 17:40:27 ----A---- C:\WINDOWS\system32\ci.dll
2015-04-19 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-04-19 17:39:00 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Šablony
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Plocha
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Nabídka Start
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Dokumenty
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Data aplikací
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-04-19 17:38:30 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-04-19 17:38:30 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-04-19 17:38:22 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-04-19 17:38:22 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-04-19 17:38:13 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-04-19 17:38:13 ----A---- C:\WINDOWS\system32\schannel.dll
2015-04-19 17:38:05 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-04-19 17:38:03 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\wininet.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\jscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-04-19 17:31:18 ----N---- C:\WINDOWS\system32\stapi64.dll
2015-04-19 17:31:12 ----A---- C:\WINDOWS\system32\stapo64.dll
2015-04-19 17:25:23 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-04-19 17:25:23 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-04-19 17:25:19 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-04-19 17:25:14 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2015-04-19 17:25:10 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-04-19 17:25:10 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-04-19 17:25:06 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-04-19 17:25:06 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eappgnui.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-04-19 17:24:56 ----A---- C:\WINDOWS\system32\win32k.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-04-19 17:24:05 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-04-19 17:24:05 ----SD---- C:\WINDOWS\system32\GWX
2015-04-19 17:23:56 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-04-19 17:23:56 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-04-19 17:23:52 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-04-19 17:23:52 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-04-19 17:23:52 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\wow64.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\tdh.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\sechost.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-19 17:23:20 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2015-04-19 17:23:20 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys
2015-04-19 17:23:16 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-04-19 17:23:08 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-04-19 17:23:03 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-04-19 17:23:03 ----A---- C:\WINDOWS\system32\msctf.dll
2015-04-19 17:22:57 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\certcli.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\mfc42u.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\mfc42.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-04-19 17:21:51 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-04-19 17:21:46 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-04-19 17:21:46 ----A---- C:\WINDOWS\system32\authui.dll
2015-04-19 17:21:38 ----A---- C:\WINDOWS\system32\lsm.dll
2015-04-19 17:21:30 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-04-19 17:21:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-04-19 17:21:26 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2015-04-19 17:21:26 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2015-04-19 17:21:22 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-04-19 17:21:22 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-04-19 17:21:13 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-04-19 17:21:13 ----A---- C:\WINDOWS\system32\calc.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wups2.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wups.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-04-19 17:20:35 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-04-19 17:20:27 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-04-19 17:20:27 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-04-19 17:20:21 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-04-19 17:20:21 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-04-19 17:20:20 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-04-19 17:18:42 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-04-19 17:18:42 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-04-19 17:18:38 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-04-19 17:18:38 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-04-19 17:16:35 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-04-19 17:16:35 ----A---- C:\WINDOWS\explorer.exe
2015-04-19 17:16:28 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-04-19 17:16:23 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-04-19 17:16:23 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-04-19 17:16:07 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-04-19 17:15:55 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2015-04-19 17:15:55 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-04-19 17:15:41 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-04-19 17:15:41 ----A---- C:\WINDOWS\system32\shell32.dll
2015-04-19 17:15:29 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-04-19 17:15:29 ----A---- C:\WINDOWS\system32\localspl.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-04-19 17:10:53 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-04-19 17:10:53 ----D---- C:\Program Files (x86)\MSBuild
2015-04-19 17:10:50 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-04-19 17:10:50 ----D---- C:\Program Files\Reference Assemblies
2015-04-19 17:10:50 ----D---- C:\Program Files\MSBuild
2015-04-19 17:10:05 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-04-19 17:10:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-04-19 17:10:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-04-19 17:10:03 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-04-19 17:10:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-04-19 17:10:01 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-04-19 17:03:45 ----SD---- C:\Users\lubisa55\AppData\Roaming\Microsoft
2015-04-19 16:57:44 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-04-19 16:48:11 ----D---- C:\Program Files\Synaptics
2015-04-19 16:48:07 ----D---- C:\WINDOWS\system32\SRSLabs
2015-04-19 16:47:57 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-04-19 16:47:12 ----D---- C:\Intel
2015-04-19 16:45:28 ----D---- C:\WINDOWS\Prefetch
2015-04-19 11:15:27 ----D---- C:\Program Files\CCleaner
2015-04-19 11:11:55 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-04-19 11:11:29 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-04-19 11:11:28 ----D---- C:\ProgramData\Malwarebytes
2015-04-19 11:11:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-04-19 11:11:28 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-04-19 11:11:28 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-04-19 11:06:26 ----D---- C:\Users\lubisa55\AppData\Roaming\SUPERAntiSpyware.com
2015-04-19 11:06:06 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2015-04-19 11:06:06 ----D---- C:\Program Files\SUPERAntiSpyware
2015-04-15 11:41:42 ----A---- C:\WINDOWS\system32\invagent.dll
2015-04-15 11:41:42 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-04-15 11:41:42 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-04-14 18:12:16 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-04-14 18:12:05 ----A---- C:\WINDOWS\avastSS.scr
2015-04-07 22:48:37 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-04 11:07:43 ----A---- C:\WINDOWS\SYSWOW64\drivers\HWiNFO64A.SYS
2015-04-04 11:07:24 ----D---- C:\Program Files (x86)\HWiNFO32

======List of files/folders modified in the last 1 month======

2015-04-19 21:48:38 ----RD---- C:\Program Files
2015-04-19 21:45:23 ----D---- C:\WINDOWS\Temp
2015-04-19 21:44:16 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-04-19 21:42:51 ----D---- C:\Users\lubisa55\AppData\Roaming\Skype
2015-04-19 21:42:38 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-04-19 21:41:38 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-04-19 21:41:10 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-04-19 21:39:57 ----D---- C:\ProgramData\PDFC
2015-04-19 21:22:11 ----D---- C:\WINDOWS\Microsoft.NET
2015-04-19 21:22:05 ----RD---- C:\WINDOWS\assembly
2015-04-19 21:16:45 ----HD---- C:\Program Files\WindowsApps
2015-04-19 21:00:00 ----D---- C:\WINDOWS\system32\sru
2015-04-19 20:42:46 ----D---- C:\WINDOWS\Logs
2015-04-19 20:28:12 ----D---- C:\Users\lubisa55\AppData\Roaming\vlc
2015-04-19 19:57:51 ----D---- C:\WINDOWS\system32\config
2015-04-19 19:51:40 ----HD---- C:\ProgramData
2015-04-19 19:47:42 ----RD---- C:\WINDOWS\System32
2015-04-19 19:47:42 ----D---- C:\WINDOWS\SysWOW64
2015-04-19 19:47:38 ----D---- C:\Windows
2015-04-19 19:46:53 ----D---- C:\WINDOWS\system32\catroot
2015-04-19 19:45:02 ----D---- C:\WINDOWS\system32\Tasks
2015-04-19 19:43:22 ----SHD---- C:\WINDOWS\Installer
2015-04-19 19:43:20 ----D---- C:\ProgramData\AMD
2015-04-19 19:43:18 ----RD---- C:\Program Files (x86)
2015-04-19 19:43:18 ----D---- C:\Program Files (x86)\Common Files
2015-04-19 19:40:48 ----D---- C:\Program Files (x86)\ATI Technologies
2015-04-19 19:34:54 ----D---- C:\WINDOWS\system32\drivers
2015-04-19 19:34:41 ----D---- C:\WINDOWS\Inf
2015-04-19 19:34:37 ----D---- C:\WINDOWS\system32\DriverStore
2015-04-19 19:25:59 ----D---- C:\swsetup
2015-04-19 18:47:01 ----D---- C:\WINDOWS\WinSxS
2015-04-19 18:46:57 ----D---- C:\WINDOWS\system32\en-US
2015-04-19 18:46:45 ----D---- C:\WINDOWS\CbsTemp
2015-04-19 18:46:37 ----SHD---- C:\System Volume Information
2015-04-19 18:45:58 ----D---- C:\WINDOWS\system32\restore
2015-04-19 18:40:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-19 18:34:10 ----D---- C:\WINDOWS\system32\LogFiles
2015-04-19 18:31:24 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-04-19 18:24:00 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-04-19 18:05:18 ----D---- C:\WINDOWS\system32\wdi
2015-04-19 18:03:35 ----SHD---- C:\$Recycle.Bin
2015-04-19 17:55:50 ----D---- C:\WINDOWS\AppReadiness
2015-04-19 17:42:10 ----D---- C:\WINDOWS\rescache
2015-04-19 17:40:33 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-04-19 17:38:56 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-04-19 17:38:56 ----D---- C:\Program Files\Windows NT
2015-04-19 17:38:55 ----D---- C:\WINDOWS\system32\wbem
2015-04-19 17:38:38 ----D---- C:\WINDOWS\Registration
2015-04-19 17:38:09 ----D---- C:\WINDOWS\WinStore
2015-04-19 17:37:45 ----D---- C:\Program Files\Internet Explorer
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\en
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-04-19 17:35:16 ----D---- C:\WINDOWS\servicing
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Photo Viewer
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Mail
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Journal
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Defender
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Mail
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Defender
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\winrm
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\slmgr
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\migwiz
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\en
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\Boot
2015-04-19 17:35:15 ----D---- C:\WINDOWS\en-US
2015-04-19 17:35:14 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-04-19 17:35:14 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-04-19 17:35:10 ----RSD---- C:\WINDOWS\Media
2015-04-19 17:30:22 ----D---- C:\WINDOWS\system32\catroot2
2015-04-19 17:23:48 ----D---- C:\WINDOWS\apppatch
2015-04-19 17:20:02 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-19 17:20:01 ----D---- C:\WINDOWS\SoftwareDistribution
2015-04-19 17:19:30 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-04-19 17:19:27 ----D---- C:\WINDOWS\system32\Sysprep
2015-04-19 17:18:57 ----RSD---- C:\WINDOWS\Fonts
2015-04-19 17:18:57 ----D---- C:\WINDOWS\Tasks
2015-04-19 17:18:22 ----D---- C:\WINDOWS\PolicyDefinitions
2015-04-19 17:15:48 ----RD---- C:\WINDOWS\ToastData
2015-04-19 17:13:40 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\SDA
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-04-19 17:13:35 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-04-19 17:13:34 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-04-19 17:13:34 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-04-19 17:13:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-04-19 17:13:33 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-04-19 17:13:28 ----D---- C:\WINDOWS\system32\WCN
2015-04-19 17:13:27 ----D---- C:\WINDOWS\system32\spool
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\oobe
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\NDF
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\MUI
2015-04-19 17:12:30 ----D---- C:\WINDOWS\system32\IME
2015-04-19 17:12:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-04-19 17:12:27 ----D---- C:\WINDOWS\system32\cs-CZ
2015-04-19 17:12:25 ----SD---- C:\WINDOWS\system32\CompatTel
2015-04-19 17:10:17 ----D---- C:\WINDOWS\system32\appraiser
2015-04-19 17:10:06 ----D---- C:\WINDOWS\Help
2015-04-19 17:10:05 ----D---- C:\WINDOWS\DigitalLocker
2015-04-19 17:10:05 ----D---- C:\WINDOWS\AppCompat
2015-04-19 17:08:02 ----RD---- C:\Users
2015-04-19 17:08:02 ----D---- C:\ProgramData\PRICache
2015-04-19 17:08:01 ----SD---- C:\ProgramData\Microsoft
2015-04-19 17:07:57 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-04-19 17:07:57 ----D---- C:\Program Files (x86)\Windows Media Player
2015-04-19 17:07:50 ----SHD---- C:\Program Files\Windows Sidebar
2015-04-19 17:07:50 ----D---- C:\Program Files\Windows Media Player
2015-04-19 17:07:49 ----D---- C:\Program Files\Common Files\microsoft shared
2015-04-19 17:07:48 ----D---- C:\Program Files\Common Files
2015-04-19 17:05:42 ----D---- C:\WINDOWS\system32\Recovery
2015-04-19 16:48:37 ----D---- C:\WINDOWS\twain_32
2015-04-19 16:44:50 ----D---- C:\WINDOWS\debug
2015-04-19 15:00:49 ----HD---- C:\$Windows.~BT
2015-04-19 13:38:02 ----D---- C:\Program Files\Hewlett-Packard
2015-04-19 13:38:02 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-04-19 13:37:18 ----D---- C:\Users\lubisa55\AppData\Roaming\hpqlog
2015-04-19 13:26:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-18 20:39:34 ----RD---- C:\Program Files (x86)\Skype
2015-04-18 20:38:29 ----D---- C:\ProgramData\Skype
2015-04-15 12:11:35 ----D---- C:\WINDOWS\system32\MRT
2015-04-15 12:08:15 ----A---- C:\WINDOWS\system32\MRT.exe
2015-04-11 14:17:51 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-20 20:31:42 ----D---- C:\WINDOWS\AUInstallAgent

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem36.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-08-05 37088]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-04-14 65736]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-04-14 271200]
R0 hpdskflt;@oem31.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-08-22 31040]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-04-14 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-04-14 1047320]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-04-14 442264]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-04-04 26528]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-04-14 29168]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-04-14 88408]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-04-14 136752]
R3 Accelerometer;@oem31.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-08-22 43328]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-08-04 12534784]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-08-04 619008]
R3 BtAudioBusSrv;@oem8.inf,%SvcDesc%;IVT Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-20 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-08-14 48736]
R3 HpqKbFiltr;@oem29.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2012-08-27 26504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcDAud;@oem14.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-03-17 25816]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 netr28x;@oem27.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2015-04-19 167424]
R3 rtbth;@oem25.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;Služba Reflektor UMDF pro knihovnu SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-11-21 226304]
R3 SPUVCbv;@oem15.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2012-08-03 1062008]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2012-08-06 540160]
R3 SynTP;@oem24.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-03-17 64216]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-15 41272]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2012-08-15 43832]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2014-07-23 172344]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-08-04 239616]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-04-14 343336]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2012-08-15 1578496]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-15 85504]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-08-29 523680]
R2 hpsrv;@oem31.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-08-22 33600]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-06-20 634632]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-19 129856]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-19 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-19 277824]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2012-07-17 1134624]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2012-08-06 321536]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-19 365376]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2012-07-19 2714232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2012-08-15 138752]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-11 1001376]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-31 116648]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-03-17 1080120]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-14 268464]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-31 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-07 148080]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2014-11-21 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]

-----------------EOF-----------------


Ohlásit tento příspěvek

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\Skype\Toolbars
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]/64

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

swenik
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 14 čer 2011 15:42

Re: Prosím o kontrolu logu

#7 Příspěvek od swenik »

Logfile of random's system information tool 1.10 (written by random/random)
Run by lubisa55 at 2015-04-28 20:26:19
Microsoft Windows 8.1
System drive C: has 620 GB (89%) free of 698 GB
Total RAM: 3976 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:26:35, on 28. 4. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\lubisa55.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [HP HD Webcam Driver_Monitor] C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\lubisa55\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: Skype Click to Call Updater (c2cautoupdatesvc) - Unknown owner - C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (file missing)
O23 - Service: Skype Click to Call PNR Service (c2cpnrsvc) - Unknown owner - C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem31.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11957 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
dashost.exe {bc8706ca-e97d-4d17-921046610129295b}
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Windows\system32\vcsFPService.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-af451105-b14f-4f5b-9e1b-7cea78290edd -SystemEventPortName:HostProcess-6a8c8e96-1c10-411d-b52d-6b3bc4348498 -IoCancelEventPortName:HostProcess-fd21da75-3f87-41c7-a4a2-d1c408733e4c -NonStateChangingEventPortName:HostProcess-bc52b1d6-67e1-4586-b238-7723bcf7aa93 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:23abc655-5964-46cb-ac55-c7256918bfd6 -DeviceGroupId:
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-adda932a-8cc4-4792-a0d7-bd539a81543c -SystemEventPortName:HostProcess-2755d1b2-8703-456d-947f-6362d1c0b2d2 -IoCancelEventPortName:HostProcess-55c65231-ec1d-4e33-b30f-f90bce7b8d2f -NonStateChangingEventPortName:HostProcess-e4d5678a-4c8d-43b5-afd3-eaa6bacfd4ed -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5ba8f0d8-1a37-4499-877e-dd1f58b249ba -DeviceGroupId:WudfDefaultDevicePool
taskeng.exe {5A822143-2430-4E5E-8E6D-4F9397088BC4}
taskhostex.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
szndesktop.exe default start
"C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
"C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe" /taskrestart

"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"

"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\lubisa55\Desktop\RSITx64.exe"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 580 584 592 65536 588
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 60b4c052-65c4-4a8e-978e-9289642b05da.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:60b4c052-65c4-4a8e-978e-9289642b05da
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 931b7e7d-bcea-480e-abd5-880952e05a13.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:931b7e7d-bcea-480e-abd5-880952e05a13

=========Mozilla firefox=========

ProfilePath - C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npwachk.dll

C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\extensions\
cs@dictionaries.addons.mozilla.org

C:\Users\lubisa55\AppData\Roaming\Mozilla\Firefox\Profiles\iewjzkil.default\searchplugins\
firmycz.xml
mapycz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-14 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-14 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-10 351136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-08-06 1425408]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\lubisa55\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\lubisa55\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-03-25 31682144]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2015-04-19 7806232]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2012-07-17 684064]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-08-29 334240]
""= []
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2012-08-16 364032]
"HP HD Webcam Driver_Monitor"=C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe [2012-07-26 303480]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-24 491120]
"RemoteControl10"=c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-03-21 1061960]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-04-14 5512912]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-08-05 766688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-28 20:15:24 ----D---- C:\_OTM
2015-04-23 08:06:30 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-21 19:27:29 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-04-21 19:27:29 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-04-21 18:36:46 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-04-21 18:34:56 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-04-21 18:34:56 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-04-21 18:34:11 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-04-21 18:34:11 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-04-21 18:31:09 ----A---- C:\WINDOWS\system32\invagent.dll
2015-04-21 18:31:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-04-21 18:31:09 ----A---- C:\WINDOWS\system32\devinv.dll
2015-04-21 18:31:09 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-04-21 18:31:09 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-04-21 18:31:09 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-04-21 18:31:06 ----A---- C:\WINDOWS\system32\aepic.dll
2015-04-21 18:31:06 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-04-19 22:40:08 ----D---- C:\AdwCleaner
2015-04-19 21:48:38 ----D---- C:\rsit
2015-04-19 21:48:38 ----D---- C:\Program Files\trend micro
2015-04-19 19:51:40 ----D---- C:\ProgramData\ATI
2015-04-19 19:43:18 ----D---- C:\Program Files (x86)\AMD AVT
2015-04-19 19:40:26 ----SHD---- C:\Config.Msi
2015-04-19 19:29:32 ----D---- C:\ProgramData\Package Cache
2015-04-19 19:28:54 ----D---- C:\Program Files\ATI Technologies
2015-04-19 17:42:14 ----SHD---- C:\Recovery
2015-04-19 17:42:00 ----DC---- C:\WINDOWS\Panther
2015-04-19 17:41:00 ----D---- C:\Windows.old
2015-04-19 17:40:28 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\wer.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-04-19 17:40:28 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-04-19 17:40:27 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-04-19 17:40:27 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-04-19 17:40:27 ----A---- C:\WINDOWS\system32\ci.dll
2015-04-19 17:39:00 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-04-19 17:39:00 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Šablony
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Plocha
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Nabídka Start
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Dokumenty
2015-04-19 17:38:56 ----SHD---- C:\ProgramData\Data aplikací
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-04-19 17:38:49 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-04-19 17:38:30 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-04-19 17:38:30 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-04-19 17:38:22 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-04-19 17:38:22 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-04-19 17:38:13 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-04-19 17:38:13 ----A---- C:\WINDOWS\system32\schannel.dll
2015-04-19 17:38:05 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-04-19 17:38:03 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-04-19 17:38:03 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\wininet.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\jscript.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-04-19 17:37:23 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-04-19 17:31:18 ----N---- C:\WINDOWS\system32\stapi64.dll
2015-04-19 17:31:12 ----A---- C:\WINDOWS\system32\stapo64.dll
2015-04-19 17:25:23 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-04-19 17:25:23 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-04-19 17:25:19 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-04-19 17:25:14 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2015-04-19 17:25:10 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-04-19 17:25:10 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-04-19 17:25:06 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-04-19 17:25:06 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eappgnui.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-04-19 17:25:02 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-04-19 17:24:56 ----A---- C:\WINDOWS\system32\win32k.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-04-19 17:24:42 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-04-19 17:24:05 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-04-19 17:24:05 ----SD---- C:\WINDOWS\system32\GWX
2015-04-19 17:23:56 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-04-19 17:23:56 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-04-19 17:23:52 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-04-19 17:23:52 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-04-19 17:23:52 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\wow64.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\tdh.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\sechost.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-04-19 17:23:45 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-19 17:23:20 ----AC---- C:\WINDOWS\system32\drivers\rfcomm.sys
2015-04-19 17:23:20 ----AC---- C:\WINDOWS\system32\drivers\hidbth.sys
2015-04-19 17:23:16 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-04-19 17:23:16 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-04-19 17:23:08 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-04-19 17:23:03 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-04-19 17:23:03 ----A---- C:\WINDOWS\system32\msctf.dll
2015-04-19 17:22:57 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-04-19 17:22:57 ----A---- C:\WINDOWS\system32\certcli.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\mfc42u.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\mfc42.dll
2015-04-19 17:21:56 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-04-19 17:21:51 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-04-19 17:21:46 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-04-19 17:21:46 ----A---- C:\WINDOWS\system32\authui.dll
2015-04-19 17:21:38 ----A---- C:\WINDOWS\system32\lsm.dll
2015-04-19 17:21:30 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-04-19 17:21:30 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-04-19 17:21:26 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2015-04-19 17:21:26 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2015-04-19 17:21:22 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-04-19 17:21:22 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-04-19 17:21:13 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-04-19 17:21:13 ----A---- C:\WINDOWS\system32\calc.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wups2.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wups.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-04-19 17:20:48 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-04-19 17:20:35 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-04-19 17:20:27 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-04-19 17:20:27 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-04-19 17:20:21 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-04-19 17:20:21 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-04-19 17:20:20 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-04-19 17:19:45 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-04-19 17:19:44 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-04-19 17:18:42 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-04-19 17:18:42 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-04-19 17:18:38 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-04-19 17:18:38 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-04-19 17:18:02 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-04-19 17:16:35 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-04-19 17:16:35 ----A---- C:\WINDOWS\explorer.exe
2015-04-19 17:16:28 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-04-19 17:16:23 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-04-19 17:16:23 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-04-19 17:16:07 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-04-19 17:15:55 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2015-04-19 17:15:55 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-04-19 17:15:41 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-04-19 17:15:41 ----A---- C:\WINDOWS\system32\shell32.dll
2015-04-19 17:15:29 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-04-19 17:15:29 ----A---- C:\WINDOWS\system32\localspl.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-04-19 17:15:23 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-04-19 17:15:23 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-04-19 17:10:53 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-04-19 17:10:53 ----D---- C:\Program Files (x86)\MSBuild
2015-04-19 17:10:50 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-04-19 17:10:50 ----D---- C:\Program Files\Reference Assemblies
2015-04-19 17:10:50 ----D---- C:\Program Files\MSBuild
2015-04-19 17:10:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-04-19 17:10:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-04-19 17:10:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-04-19 17:10:01 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-04-19 17:03:45 ----SD---- C:\Users\lubisa55\AppData\Roaming\Microsoft
2015-04-19 16:57:44 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-04-19 16:48:11 ----D---- C:\Program Files\Synaptics
2015-04-19 16:48:07 ----D---- C:\WINDOWS\system32\SRSLabs
2015-04-19 16:47:57 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-04-19 16:47:12 ----D---- C:\Intel
2015-04-19 16:45:28 ----D---- C:\WINDOWS\Prefetch
2015-04-19 11:15:27 ----D---- C:\Program Files\CCleaner
2015-04-19 11:11:55 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-04-19 11:11:29 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-04-19 11:11:28 ----D---- C:\ProgramData\Malwarebytes
2015-04-19 11:11:28 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-04-19 11:11:28 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-04-19 11:11:28 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-04-19 11:06:26 ----D---- C:\Users\lubisa55\AppData\Roaming\SUPERAntiSpyware.com
2015-04-19 11:06:06 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2015-04-19 11:06:06 ----D---- C:\Program Files\SUPERAntiSpyware
2015-04-14 18:12:16 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-04-14 18:12:05 ----A---- C:\WINDOWS\avastSS.scr
2015-04-04 11:07:43 ----A---- C:\WINDOWS\SYSWOW64\drivers\HWiNFO64A.SYS
2015-04-04 11:07:24 ----D---- C:\Program Files (x86)\HWiNFO32

======List of files/folders modified in the last 1 month======

2015-04-28 20:25:42 ----D---- C:\WINDOWS\Temp
2015-04-28 20:24:44 ----D---- C:\Users\lubisa55\AppData\Roaming\Skype
2015-04-28 20:24:06 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-04-28 20:23:57 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-04-28 20:23:01 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-04-28 20:21:07 ----D---- C:\ProgramData\PDFC
2015-04-28 20:21:00 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-04-28 20:20:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-28 20:15:25 ----RD---- C:\Program Files (x86)\Skype
2015-04-28 20:15:25 ----D---- C:\WINDOWS\Tasks
2015-04-28 20:00:00 ----D---- C:\WINDOWS\system32\sru
2015-04-28 08:41:30 ----D---- C:\WINDOWS\Microsoft.NET
2015-04-26 21:25:17 ----D---- C:\Users\lubisa55\AppData\Roaming\vlc
2015-04-26 10:38:19 ----SHD---- C:\System Volume Information
2015-04-26 09:04:51 ----D---- C:\WINDOWS\system32\config
2015-04-26 06:51:33 ----D---- C:\WINDOWS\system32\DriverStore
2015-04-26 06:33:35 ----D---- C:\WINDOWS\Logs
2015-04-25 15:04:41 ----RD---- C:\WINDOWS\System32
2015-04-25 15:04:41 ----D---- C:\WINDOWS\Inf
2015-04-25 15:04:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-25 15:01:32 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-04-23 08:53:19 ----D---- C:\WINDOWS\rescache
2015-04-23 08:28:26 ----RD---- C:\Program Files (x86)
2015-04-22 15:22:09 ----D---- C:\WINDOWS\CbsTemp
2015-04-22 11:58:05 ----D---- C:\WINDOWS\WinSxS
2015-04-22 09:12:16 ----RD---- C:\WINDOWS\assembly
2015-04-22 06:37:39 ----D---- C:\WINDOWS\SysWOW64
2015-04-21 20:21:49 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-04-21 20:21:49 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-04-21 20:21:49 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-04-21 20:21:49 ----D---- C:\WINDOWS\system32\en-US
2015-04-21 20:21:48 ----RD---- C:\Program Files
2015-04-21 20:21:32 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-04-21 20:21:32 ----D---- C:\WINDOWS\system32\cs-CZ
2015-04-21 20:21:23 ----SD---- C:\WINDOWS\system32\CompatTel
2015-04-21 20:21:22 ----D---- C:\WINDOWS\system32\wbem
2015-04-21 20:21:22 ----D---- C:\WINDOWS\system32\appraiser
2015-04-21 20:21:21 ----D---- C:\WINDOWS\apppatch
2015-04-21 18:29:57 ----D---- C:\WINDOWS\system32\catroot2
2015-04-21 18:08:33 ----D---- C:\Windows
2015-04-21 09:15:13 ----D---- C:\WINDOWS\AppReadiness
2015-04-21 09:15:12 ----HD---- C:\Program Files\WindowsApps
2015-04-20 09:39:54 ----D---- C:\WINDOWS\system32\wdi
2015-04-20 08:51:55 ----D---- C:\WINDOWS\debug
2015-04-19 19:51:40 ----HD---- C:\ProgramData
2015-04-19 19:46:53 ----D---- C:\WINDOWS\system32\catroot
2015-04-19 19:45:02 ----D---- C:\WINDOWS\system32\Tasks
2015-04-19 19:43:22 ----SHD---- C:\WINDOWS\Installer
2015-04-19 19:43:20 ----D---- C:\ProgramData\AMD
2015-04-19 19:43:18 ----D---- C:\Program Files (x86)\Common Files
2015-04-19 19:40:48 ----D---- C:\Program Files (x86)\ATI Technologies
2015-04-19 19:34:54 ----D---- C:\WINDOWS\system32\drivers
2015-04-19 19:25:59 ----D---- C:\swsetup
2015-04-19 18:45:58 ----D---- C:\WINDOWS\system32\restore
2015-04-19 18:34:10 ----D---- C:\WINDOWS\system32\LogFiles
2015-04-19 18:31:24 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-04-19 18:03:35 ----SHD---- C:\$Recycle.Bin
2015-04-19 17:40:33 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-04-19 17:38:56 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-04-19 17:38:56 ----D---- C:\Program Files\Windows NT
2015-04-19 17:38:38 ----D---- C:\WINDOWS\Registration
2015-04-19 17:38:09 ----D---- C:\WINDOWS\WinStore
2015-04-19 17:37:45 ----D---- C:\Program Files\Internet Explorer
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\en
2015-04-19 17:35:16 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-04-19 17:35:16 ----D---- C:\WINDOWS\servicing
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Photo Viewer
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Mail
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Journal
2015-04-19 17:35:16 ----D---- C:\Program Files\Windows Defender
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Mail
2015-04-19 17:35:16 ----D---- C:\Program Files (x86)\Windows Defender
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\winrm
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\slmgr
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\migwiz
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\en
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-04-19 17:35:15 ----D---- C:\WINDOWS\system32\Boot
2015-04-19 17:35:15 ----D---- C:\WINDOWS\en-US
2015-04-19 17:35:14 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-04-19 17:35:14 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-04-19 17:35:10 ----RSD---- C:\WINDOWS\Media
2015-04-19 17:20:02 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-19 17:20:01 ----D---- C:\WINDOWS\SoftwareDistribution
2015-04-19 17:19:30 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-04-19 17:19:27 ----D---- C:\WINDOWS\system32\Sysprep
2015-04-19 17:18:57 ----RSD---- C:\WINDOWS\Fonts
2015-04-19 17:18:22 ----D---- C:\WINDOWS\PolicyDefinitions
2015-04-19 17:15:48 ----RD---- C:\WINDOWS\ToastData
2015-04-19 17:13:40 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-04-19 17:13:39 ----D---- C:\WINDOWS\SYSWOW64\SDA
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-04-19 17:13:38 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-04-19 17:13:35 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-04-19 17:13:34 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-04-19 17:13:33 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-04-19 17:13:28 ----D---- C:\WINDOWS\system32\WCN
2015-04-19 17:13:27 ----D---- C:\WINDOWS\system32\spool
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\oobe
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\NDF
2015-04-19 17:12:31 ----D---- C:\WINDOWS\system32\MUI
2015-04-19 17:12:30 ----D---- C:\WINDOWS\system32\IME
2015-04-19 17:12:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-04-19 17:10:06 ----D---- C:\WINDOWS\Help
2015-04-19 17:10:05 ----D---- C:\WINDOWS\DigitalLocker
2015-04-19 17:10:05 ----D---- C:\WINDOWS\AppCompat
2015-04-19 17:08:02 ----RD---- C:\Users
2015-04-19 17:08:02 ----D---- C:\ProgramData\PRICache
2015-04-19 17:08:01 ----SD---- C:\ProgramData\Microsoft
2015-04-19 17:07:57 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-04-19 17:07:57 ----D---- C:\Program Files (x86)\Windows Media Player
2015-04-19 17:07:50 ----SHD---- C:\Program Files\Windows Sidebar
2015-04-19 17:07:50 ----D---- C:\Program Files\Windows Media Player
2015-04-19 17:07:49 ----D---- C:\Program Files\Common Files\microsoft shared
2015-04-19 17:07:48 ----D---- C:\Program Files\Common Files
2015-04-19 17:05:42 ----D---- C:\WINDOWS\system32\Recovery
2015-04-19 16:48:37 ----D---- C:\WINDOWS\twain_32
2015-04-19 13:38:02 ----D---- C:\Program Files\Hewlett-Packard
2015-04-19 13:38:02 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-04-19 13:37:18 ----D---- C:\Users\lubisa55\AppData\Roaming\hpqlog
2015-04-19 13:26:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-18 20:38:29 ----D---- C:\ProgramData\Skype
2015-04-15 12:11:35 ----D---- C:\WINDOWS\system32\MRT
2015-04-15 12:08:15 ----A---- C:\WINDOWS\system32\MRT.exe
2015-04-14 01:24:21 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem36.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-08-05 37088]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-04-14 65736]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-04-14 271200]
R0 hpdskflt;@oem31.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-08-22 31040]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-04-14 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-04-14 1047320]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-04-14 442264]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-04-04 26528]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-04-14 29168]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-04-14 88408]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-04-14 136752]
R3 Accelerometer;@oem31.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-08-22 43328]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-08-04 12534784]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-08-04 619008]
R3 BtAudioBusSrv;@oem8.inf,%SvcDesc%;IVT Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-20 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-08-14 48736]
R3 HpqKbFiltr;@oem29.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2012-08-27 26504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcDAud;@oem14.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-03-17 25816]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 netr28x;@oem27.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2015-04-19 167424]
R3 rtbth;@oem25.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;Služba Reflektor UMDF pro knihovnu SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-11-21 226304]
R3 SPUVCbv;@oem15.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2012-08-03 1062008]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2012-08-06 540160]
R3 SynTP;@oem24.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-03-17 64216]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-15 41272]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2012-08-15 43832]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2014-07-23 172344]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-08-04 239616]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-04-14 343336]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2012-08-15 1578496]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-15 85504]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-08-29 523680]
R2 hpsrv;@oem31.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-08-22 33600]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-06-20 634632]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-19 129856]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-19 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-19 277824]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2012-07-17 1134624]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2012-08-06 321536]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-19 365376]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2012-07-19 2714232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2012-08-15 138752]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-11 1001376]
S2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe /service []
S2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe /service []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-31 116648]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-03-17 1080120]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-14 268464]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-31 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-23 148080]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2014-11-21 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#8 Příspěvek od Rudy »

Dvouklikem na soubor C:\Program Files\trend micro\lubisa55.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět